1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Solved: My computer is freezing up constantly

Discussion in 'Windows XP' started by shopgurl, Jan 14, 2010.

Thread Status:
Not open for further replies.
Advertisement
  1. shopgurl

    shopgurl Thread Starter

    Joined:
    Nov 26, 2008
    Messages:
    90
    For the past few weeks my computer has been acting up; a little slow and occasionally would freeze up. A couple of days ago, it started to freeze up constantly. It's a pretty new computer (about a year old.) It's a Dell Vostro w/ Windows XP Pro, Serv Pk 3, version 5.1.2600. When it freezes, Ctrl Alt Del does nothing. A few times when I'm trying to get it to unfreeze, it starts making a loud, uninterrupted buzzing noise, something I've never had happen before.

    I have no idea where to start to figure out what's causing this. I don't know if any of it's relevant, but here's some more info on the computer and what I've checked:

    Memory

    Total Physical Memory 3072 MB
    Avail " " 2.34 GB
    Total Virtual Memory 2 GB
    Avail " " 1.96 GB
    Page file space 4.84 GB

    I also checked the following and it says OK, anywhere that it says STATUS; HARDWARE RESOURCES, (DMA, I/O, IRQ's, Memory,) COMPONENTS, and SOFTWARE.
    I've cleared cookies and temp internet files and defragged it. I checked Windows and my security programs and downloaded any updates.

    The O/S is Win XP It does not have MS Office installed, I use Open Office instead. I use mostly Firefox as my web browser, but I also have IE and Chrome installed (I'm pretty sure
    they're the latest versions.) I have the following security programs installed:
    AVG Free 8.5
    SuperAntiSpyware Free edition
    Spyware Blaster

    I moved my computer a couple of days ago and it is only since then that the freezing up has become really frequent. Because there seemed to be a major change at one time, I tried doing a system restore. When I clicked on the dates Sys Restore is available, I noticed most of the dates said "system checkpoint" but this past Sunday, it also says
    "unsigned driver install" that sounded bad, so I did the sys restore to before the unsigned driver was installed. The unsigned driver is a d-link wireless N USB Adapter. I've tried reinstalling it w/ the disk it came with and w/ software downloaded from their site - but both times I get a Windows warning message about it being unsigned. D-link tech support says not to worry about it. I'm not sure if it could be causing the problem. I did sys restore again and didn't reinstall it, and it still froze up, though not as quickly. But the timing seems suspicious.

    It keeps prompting me to install the same update when I reboot (as if the update wasn't really done.) It's from 1-5-10, 4.33.1000. It says Application; resolved scanning crash issues related to infection blocking. Since I noticed the update is supposed to correct scanning CRASH issues, and since it never actully seems to be installed, maybe that' the problem?

    Is there any sort of diagnostic report I can run that will tell me what might be causing this? Any suggestions are appreciated. Thanks,

    Shopgurl
     
  2. Phantom010

    Phantom010 Trusted Advisor

    Joined:
    Mar 9, 2009
    Messages:
    34,753
    Please click here to download and install version 2.0.2 of the HijackThis Installer.

    Run it and select Do a system scan and save a logfile.

    The log will be saved in Notepad. Copy and paste the log in your next post.

    Do not fix anything
     
  3. shopgurl

    shopgurl Thread Starter

    Joined:
    Nov 26, 2008
    Messages:
    90
    Thanks for responding. Here's the HijackThis logfile. I appreciate your help.

    -Shopgurl


    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 1:17:21 PM, on 1/14/2010
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
    C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    C:\Program Files\Dell Support Center\bin\sprtsvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\PROGRA~1\AVG\AVG8\avgemc.exe
    C:\PROGRA~1\AVG\AVG8\avgrsx.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\AVG\AVG8\avgcsrvx.exe
    C:\WINDOWS\RTHDCPL.EXE
    C:\Program Files\Realtek\Diagnostics Utility\8169Diag.exe
    C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
    C:\Program Files\ATI Technologies\ATI.ACE\CLI.EXE
    C:\PROGRA~1\AVG\AVG8\avgtray.exe
    C:\Program Files\Dell Support Center\bin\sprtcmd.exe
    C:\Program Files\Lexmark X6100 Series\lxbfbmgr.exe
    C:\Program Files\Lexmark X6100 Series\lxbfbmon.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\D-Link\D-Link Wireless N USB Adapter DWA-130\wirelesscm.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\TrueSwitchAT&TMembers\TrueWizard.exe
    C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
    C:\Documents and Settings\Carol Chaltron\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
    C:\Documents and Settings\Carol Chaltron\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
    C:\PROGRA~1\AVG\AVG8\avgnsx.exe
    C:\Documents and Settings\Carol Chaltron\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USSMB/1
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearchbonus.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http:/mysearchbonus.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.rememberthemilk.com/home/savinggurl/#section.tasks
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://g.msn.com/USSMB/1
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
    R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
    R3 - URLSearchHook: (no name) - *{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - (no file)
    R3 - URLSearchHook: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
    O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
    O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
    O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
    O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
    O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
    O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKLM\..\Run: [8169Diag] C:\Program Files\Realtek\Diagnostics Utility\8169Diag.exe /hw
    O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "c:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
    O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
    O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
    O4 - HKLM\..\Run: [dellsupportcenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P dellsupportcenter
    O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
    O4 - HKLM\..\Run: [DNS7reminder] "C:\Program Files\Nuance\NaturallySpeaking9\Ereg\Ereg.exe" -r "C:\Documents and Settings\All Users\Application Data\Nuance\NaturallySpeaking9\Ereg.ini
    O4 - HKLM\..\Run: [Lexmark X6100 Series] "C:\Program Files\Lexmark X6100 Series\lxbfbmgr.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
    O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -scheduler
    O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
    O4 - HKCU\..\Run: [cdloader] "C:\Documents and Settings\Carol Chaltron\Application Data\mjusbsp\cdloader2.exe" MAGICJACK
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Carol Chaltron\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Startup: TrueAssistant.lnk = C:\Program Files\TrueSwitchAT&TMembers\TrueWizard.exe
    O4 - Global Startup: Wireless Connection Manager.lnk = C:\Program Files\D-Link\D-Link Wireless N USB Adapter DWA-130\wirelesscm.exe
    O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
    O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
    O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
    O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
    O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
    O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
    O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
    O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
    O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1233965627165
    O16 - DPF: {A7EA8AD2-287F-11D3-B120-006008C39542} (CBSTIEPrint Class) - http://offers.e-centives.com/cif/download/bin/actxcab.cab
    O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
    O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
    O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
    O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
    O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
    O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
    O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
    O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe

    --
    End of file - 12774 bytes
     
  4. Phantom010

    Phantom010 Trusted Advisor

    Joined:
    Mar 9, 2009
    Messages:
    34,753
    Is SuperAntiSpyware giving you that message?

     
  5. shopgurl

    shopgurl Thread Starter

    Joined:
    Nov 26, 2008
    Messages:
    90
    Sorry, I meant to say where that prompt came from. I was typing fast trying to finish my post before the computer froze up again, and I didn't realize I left that out.
    Yes, the prompt was from Super AntiSpyware. It seems like it prompted me to install that update 3-4 times, although I thought I'd installed it after the first prompt. (It could also be because I did system restore and took the computer back to before that update was done?)

    Thanks,

    Shopgurl
     
  6. shopgurl

    shopgurl Thread Starter

    Joined:
    Nov 26, 2008
    Messages:
    90
    I just remembered one other thing that may provide a clue to why this is happening. When I checked for Windows Updates, I had to restart. When the computer came back on, there was a blue screen w/plain text in white that said:

    "There was a problem detected & windows shut down to prevent damage to your computer.
    INVALID_PROCESS_DETACH_ATTEMPT

    If this is the first time you're seeing this 'stop error' screen, restart your computer. If

    it appears again, check for new hardware or software recently installed ...."


    After I restarted I got this message:

    "The system has recovered from a serious error - a log was created:

    Error Signature BCCode:6 BCP1:00000000 BCP2:00000000 BCP3:00000000 BCP4:00000000

    O/S Ver: 5_1_2600 SP:3_0 Product256_1"


    Then, I think I ended up restarting it again (or this was when I clicked on details...)
    and got this message:

    "A device driver on your computer caused a stop error" then it recommended a few options

    -update drivers on Windows site
    -Dell driver reset tool
    -Uninstall program
    -System restore
    -Support.dell.com


    The driver they were referring to (I think) is my D-Link Wireless N USB Adapter (some of the details on that dilemma are described above.)

    I'm not sure if that provides a clue as to what might be causing this, but I thought I'd post it in case it does. Any help is greatly appreciated.

    Thanks,

    Shopgurl
     
  7. Kenny94

    Kenny94 Banned

    Joined:
    Dec 16, 2004
    Messages:
    2,026
    Hi shopgurl

    I tried to call you on your cell phone a few days ago. No answer....:(

    Lets do a few things and we'll go from there.



    Go to Start > Control Panel > Add/Remove Programs.

    Please remove these entries from Add/Remove Programs in the Control Panel

    SuperAntiSpyware



    Next

    You may have corrupted files on your disk. Please try running the following.
    First close ALL Applications as this routine will automatically restart your computer.
    Click on START - RUN and copy / paste the following entry into the box and click OK
    Code:
    CMD /C ECHO Y|CHKDSK C: /F | SHUTDOWN /R /T 30

    The Event Logs will show us what is causing the freezing in your computer.

    Next

    Post Event Logs:

    • Please download VEW by Vino Rosso from here and save it to your desktop
    • Double click it to start it Note: If running Windows Vista or Windows 7 you will need to right click the file and select Run as administrator and click Continue or Allow at the User Account Control Prompt.
    • Click the check boxes next to Application and System located under Select log to query on the upper left
    • Under Select type to list on the right click the boxes next to Error and Warning Note: If running Windows Vista or Windows 7 also click the box next to Critical (not XP).
    • Under Number or date of events select Number of events and type 20 in the box next to 1 to 20 and click Run
    • Once it finishes it will display a log file in notepad
    • Please copy and paste its entire contents into your next reply
     
  8. Phantom010

    Phantom010 Trusted Advisor

    Joined:
    Mar 9, 2009
    Messages:
    34,753
    I'll leave this in your expert hands Kenny94. :)
     
  9. Kenny94

    Kenny94 Banned

    Joined:
    Dec 16, 2004
    Messages:
    2,026
    It's not malware....:D

    Seriously Phantom010, when she post the Event Logs feel free to jump in! Or anyone one else. Hey, if we get this fixed, shopgurl has some excellent cooking recipes tips....:)
     
  10. Phantom010

    Phantom010 Trusted Advisor

    Joined:
    Mar 9, 2009
    Messages:
    34,753
    I'll be happy to help if I can! I love to eat!!! [​IMG]
     
  11. shopgurl

    shopgurl Thread Starter

    Joined:
    Nov 26, 2008
    Messages:
    90
    Hi Kenny

    Thanks so much for responding. Here's the log:


    Vino's Event Viewer v01c run on Windows XP in English
    Report run at 15/01/2010 1:58:15 PM

    Note: All dates below are in the format dd/mm/yyyy

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'Application' Log - error Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'Application' Date/Time: 14/01/2010 11:41:11 PM
    Type: error Category: 0
    Event: 20 Source: Google Update
    The event description cannot be found.

    Log: 'Application' Date/Time: 13/01/2010 7:41:05 PM
    Type: error Category: 0
    Event: 20 Source: Google Update
    The event description cannot be found.

    Log: 'Application' Date/Time: 13/01/2010 3:41:05 PM
    Type: error Category: 0
    Event: 20 Source: Google Update
    The event description cannot be found.

    Log: 'Application' Date/Time: 13/01/2010 1:16:45 PM
    Type: error Category: 0
    Event: 1001 Source: Application Hang
    Fault bucket 1623347082.

    Log: 'Application' Date/Time: 13/01/2010 1:16:42 PM
    Type: error Category: 101
    Event: 1002 Source: Application Hang
    Hanging application firefox.exe, version 1.9.1.3642, hang module hungapp, version 0.0.0.0,

    hang address 0x00000000.

    Log: 'Application' Date/Time: 12/01/2010 9:03:26 PM
    Type: error Category: 0
    Event: 1001 Source: Application Hang
    Fault bucket 1623659249.

    Log: 'Application' Date/Time: 12/01/2010 9:03:17 PM
    Type: error Category: 0
    Event: 1001 Source: Application Hang
    Fault bucket 1623659249.

    Log: 'Application' Date/Time: 12/01/2010 9:03:13 PM
    Type: error Category: 101
    Event: 1002 Source: Application Hang
    Hanging application firefox.exe, version 1.9.0.3642, hang module hungapp, version 0.0.0.0,

    hang address 0x00000000.

    Log: 'Application' Date/Time: 12/01/2010 9:03:13 PM
    Type: error Category: 101
    Event: 1002 Source: Application Hang
    Hanging application firefox.exe, version 1.9.0.3642, hang module hungapp, version 0.0.0.0,

    hang address 0x00000000.

    Log: 'Application' Date/Time: 12/01/2010 3:05:58 AM
    Type: error Category: 0
    Event: 1001 Source: Application Error
    Fault bucket 1648241865.

    Log: 'Application' Date/Time: 12/01/2010 3:05:49 AM
    Type: error Category: 0
    Event: 1000 Source: Application Error
    Faulting application firefox.exe, version 1.9.0.3642, faulting module xul.dll, version

    1.9.0.3642, fault address 0x00061347.

    Log: 'Application' Date/Time: 11/01/2010 3:39:24 PM
    Type: error Category: 0
    Event: 1001 Source: Application Hang
    Fault bucket 1425431979.

    Log: 'Application' Date/Time: 11/01/2010 3:39:22 PM
    Type: error Category: 101
    Event: 1002 Source: Application Hang
    Hanging application soffice.bin, version 3.1.9420.500, hang module hungapp, version 0.0.0.0,

    hang address 0x00000000.

    Log: 'Application' Date/Time: 11/01/2010 3:30:24 PM
    Type: error Category: 0
    Event: 1001 Source: Application Hang
    Fault bucket 1425431979.

    Log: 'Application' Date/Time: 11/01/2010 3:30:22 PM
    Type: error Category: 101
    Event: 1002 Source: Application Hang
    Hanging application soffice.bin, version 3.1.9420.500, hang module hungapp, version 0.0.0.0,

    hang address 0x00000000.

    Log: 'Application' Date/Time: 11/01/2010 3:20:31 PM
    Type: error Category: 101
    Event: 1002 Source: Application Hang
    Hanging application soffice.bin, version 3.1.9420.500, hang module hungapp, version 0.0.0.0,

    hang address 0x00000000.

    Log: 'Application' Date/Time: 11/01/2010 3:16:51 PM
    Type: error Category: 0
    Event: 1001 Source: Application Hang
    Fault bucket 1425431979.

    Log: 'Application' Date/Time: 11/01/2010 3:16:48 PM
    Type: error Category: 101
    Event: 1002 Source: Application Hang
    Hanging application soffice.bin, version 3.1.9420.500, hang module hungapp, version 0.0.0.0,

    hang address 0x00000000.

    Log: 'Application' Date/Time: 11/01/2010 3:14:55 PM
    Type: error Category: 0
    Event: 1001 Source: Application Hang
    Fault bucket 1425431979.

    Log: 'Application' Date/Time: 11/01/2010 3:14:52 PM
    Type: error Category: 101
    Event: 1002 Source: Application Hang
    Hanging application soffice.bin, version 3.1.9420.500, hang module hungapp, version 0.0.0.0,

    hang address 0x00000000.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'Application' Log - warning Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'Application' Date/Time: 15/01/2010 1:42:33 PM
    Type: warning Category: 0
    Event: 1517 Source: Userenv
    Windows saved user CAROL\Carol Chaltron registry while an application or service was still

    using the registry during log off. The memory used by the user's registry has not been freed.

    The registry will be unloaded when it is no longer in use. This is often caused by

    services running as a user account, try configuring the services to run in either the

    LocalService or NetworkService account.

    Log: 'Application' Date/Time: 15/01/2010 4:46:49 AM
    Type: warning Category: 0
    Event: 1517 Source: Userenv
    Windows saved user CAROL\Carol Chaltron registry while an application or service was still

    using the registry during log off. The memory used by the user's registry has not been freed.

    The registry will be unloaded when it is no longer in use. This is often caused by

    services running as a user account, try configuring the services to run in either the

    LocalService or NetworkService account.

    Log: 'Application' Date/Time: 13/01/2010 3:07:14 PM
    Type: warning Category: 0
    Event: 1517 Source: Userenv
    Windows saved user CAROL\Carol Chaltron registry while an application or service was still

    using the registry during log off. The memory used by the user's registry has not been freed.

    The registry will be unloaded when it is no longer in use. This is often caused by

    services running as a user account, try configuring the services to run in either the

    LocalService or NetworkService account.

    Log: 'Application' Date/Time: 13/01/2010 1:44:50 PM
    Type: warning Category: 0
    Event: 1517 Source: Userenv
    Windows saved user CAROL\Carol Chaltron registry while an application or service was still

    using the registry during log off. The memory used by the user's registry has not been freed.

    The registry will be unloaded when it is no longer in use. This is often caused by

    services running as a user account, try configuring the services to run in either the

    LocalService or NetworkService account.

    Log: 'Application' Date/Time: 10/01/2010 3:28:26 PM
    Type: warning Category: 0
    Event: 1524 Source: Userenv
    Windows cannot unload your classes registry file - it is still in use by other applications

    or services. The file will be unloaded when it is no longer in use.

    Log: 'Application' Date/Time: 11/12/2009 4:47:00 AM
    Type: warning Category: 0
    Event: 1524 Source: Userenv
    Windows cannot unload your classes registry file - it is still in use by other applications

    or services. The file will be unloaded when it is no longer in use.

    Log: 'Application' Date/Time: 16/11/2009 8:41:14 PM
    Type: warning Category: 0
    Event: 12 Source: Google Update
    The event description cannot be found.

    Log: 'Application' Date/Time: 02/11/2009 7:54:24 PM
    Type: warning Category: 0
    Event: 1517 Source: Userenv
    Windows saved user CAROL\Carol Chaltron registry while an application or service was still

    using the registry during log off. The memory used by the user's registry has not been freed.

    The registry will be unloaded when it is no longer in use. This is often caused by

    services running as a user account, try configuring the services to run in either the

    LocalService or NetworkService account.

    Log: 'Application' Date/Time: 17/10/2009 4:05:20 AM
    Type: warning Category: 1
    Event: 1020 Source: ASP.NET 2.0.50727.0
    Updates to the IIS metabase were aborted because IIS is either not installed or is disabled

    on this machine. To configure ASP.NET to run in IIS, please install or enable IIS and

    re-register ASP.NET using aspnet_regiis.exe /i.

    Log: 'Application' Date/Time: 13/10/2009 4:56:37 AM
    Type: warning Category: 0
    Event: 1517 Source: Userenv
    Windows saved user CAROL\Carol Chaltron registry while an application or service was still

    using the registry during log off. The memory used by the user's registry has not been freed.

    The registry will be unloaded when it is no longer in use. This is often caused by

    services running as a user account, try configuring the services to run in either the

    LocalService or NetworkService account.

    Log: 'Application' Date/Time: 31/07/2009 3:09:46 AM
    Type: warning Category: 0
    Event: 1524 Source: Userenv
    Windows cannot unload your classes registry file - it is still in use by other applications

    or services. The file will be unloaded when it is no longer in use.

    Log: 'Application' Date/Time: 30/06/2009 3:18:34 PM
    Type: warning Category: 0
    Event: 1524 Source: Userenv
    Windows cannot unload your classes registry file - it is still in use by other applications

    or services. The file will be unloaded when it is no longer in use.

    Log: 'Application' Date/Time: 13/05/2009 3:41:03 AM
    Type: warning Category: 0
    Event: 1517 Source: Userenv
    Windows saved user CAROL\Carol Chaltron registry while an application or service was still

    using the registry during log off. The memory used by the user's registry has not been freed.

    The registry will be unloaded when it is no longer in use. This is often caused by

    services running as a user account, try configuring the services to run in either the

    LocalService or NetworkService account.

    Log: 'Application' Date/Time: 19/03/2009 1:45:17 PM
    Type: warning Category: 0
    Event: 1524 Source: Userenv
    Windows cannot unload your classes registry file - it is still in use by other applications

    or services. The file will be unloaded when it is no longer in use.

    Log: 'Application' Date/Time: 17/03/2009 12:04:11 PM
    Type: warning Category: 1
    Event: 32068 Source: Microsoft Fax
    The event description cannot be found.

    Log: 'Application' Date/Time: 17/03/2009 12:04:11 PM
    Type: warning Category: 1
    Event: 32026 Source: Microsoft Fax
    The event description cannot be found.

    Log: 'Application' Date/Time: 16/03/2009 11:18:01 AM
    Type: warning Category: 1
    Event: 32068 Source: Microsoft Fax
    The event description cannot be found.

    Log: 'Application' Date/Time: 16/03/2009 11:18:01 AM
    Type: warning Category: 1
    Event: 32026 Source: Microsoft Fax
    The event description cannot be found.

    Log: 'Application' Date/Time: 14/03/2009 10:47:17 AM
    Type: warning Category: 1
    Event: 32068 Source: Microsoft Fax
    The event description cannot be found.

    Log: 'Application' Date/Time: 14/03/2009 10:47:17 AM
    Type: warning Category: 1
    Event: 32026 Source: Microsoft Fax
    The event description cannot be found.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'System' Log - error Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'System' Date/Time: 13/01/2010 11:43:56 PM
    Type: error Category: 0
    Event: 7000 Source: Service Control Manager
    The SASDIFSV service failed to start due to the following error: Cannot create a file when

    that file already exists.

    Log: 'System' Date/Time: 13/01/2010 6:55:13 PM
    Type: error Category: 0
    Event: 29 Source: W32Time
    The time provider NtpClient is configured to acquire time from one or more time sources,

    however none of the sources are currently accessible. No attempt to contact a source will be

    made for 14 minutes. NtpClient has no source of accurate time.

    Log: 'System' Date/Time: 13/01/2010 6:55:13 PM
    Type: error Category: 0
    Event: 17 Source: W32Time
    Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer

    'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was:

    A socket operation was attempted to an unreachable host. (0x80072751)

    Log: 'System' Date/Time: 13/01/2010 6:48:46 PM
    Type: error Category: 0
    Event: 7000 Source: Service Control Manager
    The SASDIFSV service failed to start due to the following error: Cannot create a file when

    that file already exists.

    Log: 'System' Date/Time: 13/01/2010 5:44:31 PM
    Type: error Category: 0
    Event: 29 Source: W32Time
    The time provider NtpClient is configured to acquire time from one or more time sources,

    however none of the sources are currently accessible. No attempt to contact a source will be

    made for 14 minutes. NtpClient has no source of accurate time.

    Log: 'System' Date/Time: 13/01/2010 5:44:31 PM
    Type: error Category: 0
    Event: 17 Source: W32Time
    Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer

    'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was:

    A socket operation was attempted to an unreachable host. (0x80072751)

    Log: 'System' Date/Time: 13/01/2010 5:18:04 PM
    Type: error Category: 0
    Event: 10010 Source: DCOM
    The server {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C} did not register with DCOM within the

    required timeout.

    Log: 'System' Date/Time: 13/01/2010 1:54:46 PM
    Type: error Category: 102
    Event: 1003 Source: System Error
    Error code 00000006, parameter1 00000000, parameter2 00000000, parameter3 00000000,

    parameter4 00000000.

    Log: 'System' Date/Time: 12/01/2010 10:24:56 PM
    Type: error Category: 0
    Event: 10010 Source: DCOM
    The server {5A90F5EE-16B8-4C2A-81B3-FD5329BA477C} did not register with DCOM within the

    required timeout.

    Log: 'System' Date/Time: 12/01/2010 8:43:47 PM
    Type: error Category: 0
    Event: 7000 Source: Service Control Manager
    The SASDIFSV service failed to start due to the following error: Cannot create a file when

    that file already exists.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    'System' Log - warning Type
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Log: 'System' Date/Time: 13/01/2010 8:27:50 PM
    Type: warning Category: 0
    Event: 1009 Source: Dhcp
    A network error occurred when trying to send a message. The error code is: A blocking

    operation was interrupted by a call to WSACancelBlockingCall. .

    Log: 'System' Date/Time: 11/01/2010 9:27:27 AM
    Type: warning Category: 0
    Event: 36 Source: W32Time
    The time service has not been able to synchronize the system time for 49152 seconds because

    none of the time providers has been able to provide a usable time stamp. The system clock is

    unsynchronized.
     
  12. Kenny94

    Kenny94 Banned

    Joined:
    Dec 16, 2004
    Messages:
    2,026
    Restart your computer and as soon as it starts booting up again continuously tap F8. A menu should come up where you will be given the option to enter Safe Mode.


    Now Use your arrow keys to move to "Last Known Good Configuration" and press your Enter key. This will enables the system to go back to a date before you had this problem. And let me know if this worked?
     
  13. shopgurl

    shopgurl Thread Starter

    Joined:
    Nov 26, 2008
    Messages:
    90
    Hi Kenny and Phantom,

    I don't think Last known Good Configuration worked. It's still freezing up. Although the instructions were pretty straight forward; I'm not positive I did it right. When I hit F8 repeatedly the first menu that comes up is to choose the operating system. Since it also said for Windows Advanced Options hit F8, I hit F8 one more time. The menu I got next has a bunch of choices including:

    Safe Mode
    Safe Mode w/networking
    Safe Mode w/command prompt
    Enable Boot Logging
    Enable VGA Mode
    Last Known Good Configuration

    From your instructions, I was thinking I was going to choose safe mode, then get another menu and choose last known good configuration. But they are 2 of the choices on the same menu, which threw me a little.

    --If I choose safe mode, it goes back to the previous screen (select O/S) and it says "safe mode" in blue in the bottom left corner. From there, if I hit enter (I'm thinking maybe that will "select" safe mode again, because the words "safe mode" seem lit up), it just restarts my computer in safe mode, but then I can't get to last known good configuration.

    --If I choose safe mode, let it go back to the previous screen (select O/S) where it says "safe mode" in blue in the bottom left corner; from there, if I hit F8 (instead of enter), it takes me to a list of drivers and other stuff that fills the whole page and there is no option to choose anything. If I wait a few seconds it goes from there to a windows screen with a
    choice of Administrator, or Carol Chaltron. If I choose Admin., I don't have the password,
    if I choose my name, it just starts in normal windows.

    --I also tried choosing last known good configuration (I think I tried it once on it's own and once after chooosing safe mode), it just starts the computer up w/ a normal windows
    screen. And maybe at that point it is starting w/ the last known good configuration, but it
    does not say anything to confirm that, so I wasn't sure. But it was still freezing up after trying each of the above options, so I'm not sure if it didn't work or if I did it wrong. Let me know if any of these descriptions sound like I got where I was supposed to. Did the Hijack This log or the VEW logfile provide any clues as to what the problem might be?

    Thanks very much.

    Shopgurl
     
  14. shopgurl

    shopgurl Thread Starter

    Joined:
    Nov 26, 2008
    Messages:
    90
    Or could it have something to do with reinstalling my D-Link Wireless Adapter?
     
  15. Phantom010

    Phantom010 Trusted Advisor

    Joined:
    Mar 9, 2009
    Messages:
    34,753
    You could try testing your drivers by disabling them one or a few at the time, using Autoruns and selecting the Drivers tab. Reboot each time to see if the problem persists without the driver(s). Be careful not to disable your mouse or keyboard driver though.
     
  16. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/893937

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice